Cyber Data Protection/PKI Specialist Senior Consultant

Deloitte T.T.L.
Philadelphia, PA, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Secure Shell (SSH) Client Server Models Cloud Computing Cloud Computing Security Cyber Security Data Discovery Data Security Key Management Multi-Purpose Internet Mail Extensions (MIME) Public Key Infrastructure Transport Layer Security Load Balancing
+3 more
Kubernetes Information Technology Api Gateway

Job description

Experteer Overview As a Senior Consultant in Deloitte’s Cyber team, you help clients protect data across cloud, on-premises and hybrid environments through encryption, PKI, and robust key management. You act as a trusted advisor, guiding strategy, architecture and implementation to reduce data risk and ensure secure certificate lifecycles. You partner with cross-functional teams to deliver high-quality engagement outcomes and stay ahead of evolving cryptography trends. This role offers impact by shaping data protection programs for diverse industries and clients. Compensation / Benefits * Serve as SME and advisor on data protection, encryption and secure key management * Design, implement and operate encryption strategies across environments (cloud, on-prem, hybrid) and manage PKI lifecycle * Monitor certificate health and maintain PKI infrastructure to prevent downtime * Lead client engagements, drive execution, and communicate progress to clients and leadership * Provide guidance to delivery teams and ensure timely, high-quality work products * Track project timelines and ensure on-time, on-budget delivery * Stay current on encryption technologies (e.g., post-quantum crypto, confidential computing) and industry trends * Evaluate and recommend new tools/solutions to enhance data security Tasks * Bachelor’s degree in cybersecurity, information security, engineering, computer science, information technology or related field * 5+ years in data protection and information security (data discovery, classification, DLP, cloud security, encryption, CLM, etc.) * 5+ years PKI expertise: certificates, CAs, RA, CSR, OCSP, CRL, HSM, key management, trust chains * 2+ years implementing various encryption technologies and cloud encryption concepts (BYOK, client/server-side) * 2+ years developing data protection strategies, roadmaps and frameworks * 2+ years hands-on with data protection technologies and at least one CLM platform (AppViewX, Venafi, Keyfactor, DigiCert) * 2+ years with cryptographic standards/protocols (TLS/SSL, SSH, S/MIME, code signing) and NIST practices * 2+ years certificate discovery, inventory, automation, renewal and compliance monitoring * 2+ years supporting strategy, architecture, roadmaps and implementation workstreams * 2+ years understanding integration points across F5, load balancers, WAFs, Kubernetes, API gateways, and cloud platforms * 2+ years client-facing: requirements gathering, stakeholder management, workshops, executive communication * 2+ years leading small teams/workstreams and delivering client-ready artifacts * Willingness to travel 25-50% Key requirements *

Requirements

_ delivery teams and ensure timely, high-quality work products * Track project timelines and ensure on-time, on-budget delivery * Stay current on encryption technologies (e.g., post-quantum crypto, confidential computing) and industry trends * Evaluate and recommend new tools/solutions to enhance data security Tasks * Bachelor’s degree in cybersecurity, information security, engineering, computer science, information technology or related field * 5+ years in data protection and information security (data discovery, classification, DLP, cloud security, encryption, CLM, etc.) * 5+ years PKI expertise: certificates, CAs, RA, CSR, OCSP, CRL, HSM, key management, trust chains * 2+ years implementing various encryption technologies and cloud encryption concepts (BYOK, client/server-side) * 2+ years developing data protection strategies, roadmaps and frameworks * 2+ years hands-on with data protection technologies and at least one CLM platform (AppViewX, Venafi, Keyfactor, DigiCert) * 2+ years aa in cryptographic standards/protocols (TLS/SSL, SSH, S/MIME, code signing) and NIST practices * 2+ years certificate discovery, inventory, automation, renewal and compliance monitoring * 2+ years supporting strategy, architecture, roadmaps and implementation workstreams * 2+ years understanding integration points across F5, load balancers, WAFs, Kubernetes, API gateways, and cloud platforms * 2+ years client-facing: requirements gathering, stakeholder management, workshops, executive communication * 2+ years leading small teams/workstreams and delivering client-ready artifacts * Willingness to travel 25-50% Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

1:32 min

Designing a centralized API gateway and identity provider

Axel Barbier · World Congress 2023

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · World Congress 2024

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · World Congress 2022

Videos

See all

Related articles

See all